PRIVACY POLICY
Privacy Policy of KaiZen
Last Updated: 23rd of September 2025
1. Information Collection and Purpose
1.1. Information on the Processing of Personal Data
kaiZen is a Custom Device Policy Controller (DPC) that turns your Android device into a minimalist, distraction-free tool by allowing access only to a whitelist of apps. To achieve this, kaiZen must be installed as a device owner app, which triggers system warnings such as:
"This device belongs to your organization."
"Your IT admin may be able to see your data and activity."
These warnings reflect Android's Enterprise mechanism, not our actual practices.
1.2. Legal Basis for Data Processing
kaiZen processes data based on GDPR legal bases:
Emails: Collected under contractual necessity (account setup, support).
Device Serial Hash: Processed under legitimate interest to validate licenses.
Analytics Data: Collected under legitimate interest to improve product reliability and performance.
Emails: Collected under contractual necessity (account setup, support).
Device Serial Hash: Processed under legitimate interest to validate licenses.
Analytics Data: Collected under legitimate interest to improve product reliability and performance.
1.3. Purpose of Data Collection
Emails: To provide support, send important updates about your purchase, and manage your license.
Device Serial Hash: To prevent license misuse and validate legitimate installations.
Analytics Data: To monitor system stability, aggregate app usage, and improve the experience over time.
Device Serial Hash: To prevent license misuse and validate legitimate installations.
Analytics Data: To monitor system stability, aggregate app usage, and improve the experience over time.
1.4. Third party data processors
PrivateMail, Mailchimp - For email communication.
DodoPayments - For payment processing.
Google Analytics - For anonymized usage data.
Google Cloud and Cloudflare - For backend infrastructure.
DodoPayments - For payment processing.
Google Analytics - For anonymized usage data.
Google Cloud and Cloudflare - For backend infrastructure.
2. Data Sharing and Disclosure
kaiZen does not sell or trade personal data. Data is shared only with trusted processors (listed above) for essential operations.
Personal data may be disclosed to law enforcement or government agencies if legally required (court order, subpoena).
Personal data may be disclosed to law enforcement or government agencies if legally required (court order, subpoena).
3. Data Retention Policy
Emails: Retained for as long as necessary to provide support and maintain your license, and up to 12 months after license termination.
Device Serial Hash: For up to 24 months after last using kaiZen, either through the free trial, or through a purchased enrollment token, to prevent free trial misuse.
Analytics Data: Retained in aggregated, anonymized form for up to 24 months.
4. International Data Transfers
Some third-party providers (e.g., Mailchimp, Google Cloud) may process data outside the EU, particularly in the United States. kaiZen ensures compliance with GDPR-approved safeguards such as Standard Contractual Clauses (SCCs) when transferring data internationally.